irsdl / IIS-ShortName-Scanner

latest version of scanners for IIS short filename (8.3) disclosure vulnerability
1.41k stars 250 forks source link

Scanner with SSRF #16

Closed Comancheroo closed 7 years ago

Comancheroo commented 7 years ago

Hello,

I want to scan with SSRF(Server Side Request Forgery).

URL: http://www.site.com/proxy.asp?url=http://192.168.10.5/ But your scanner can't scan to 192.168.10.5. Only site.com.

irsdl commented 7 years ago

I have added a new option called "useProvidedURLWithoutChange". Please change the config in order to use it.